CVE-2018-19913: Domainmod

Medium severity, CVSS 4.8. EPSS: 1.8% chance of exploitation in the next 30 days.

DomainMOD through 4.11.01 has XSS via the assets/add/registrar-accounts.php UserName, Reseller ID, or notes field.

Affected products

  • Domainmod Domainmod: from 4.09.03, up to and including 4.11.01

Published 2018-12-06. Last modified 2026-06-17.